This policy applies to every repository in the ThinWindow organization that
doesn't have its own SECURITY.md.
Please report vulnerabilities privately through GitHub: open the affected repository and use Security → Report a vulnerability. For ThinWindow itself, that is thinwindow/thinwindow. Don't open a public issue for security problems.
You'll get an acknowledgement as soon as the maintainer sees it, and a fix or a decision will be coordinated with you before anything is disclosed.
Only the latest release of each project receives fixes.